1#[derive(::std::clone::Clone, ::std::default::Default, ::std::fmt::Debug)]
4#[non_exhaustive]
5pub struct AssumeRoleWithSAML;
6impl AssumeRoleWithSAML {
7 pub fn new() -> Self {
9 Self
10 }
11 pub(crate) async fn orchestrate(
12 runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
13 input: crate::operation::assume_role_with_saml::AssumeRoleWithSamlInput,
14 ) -> ::std::result::Result<
15 crate::operation::assume_role_with_saml::AssumeRoleWithSamlOutput,
16 ::aws_smithy_runtime_api::client::result::SdkError<
17 crate::operation::assume_role_with_saml::AssumeRoleWithSAMLError,
18 ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
19 >,
20 > {
21 let map_err = |err: ::aws_smithy_runtime_api::client::result::SdkError<
22 ::aws_smithy_runtime_api::client::interceptors::context::Error,
23 ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
24 >| {
25 err.map_service_error(|err| {
26 err.downcast::<crate::operation::assume_role_with_saml::AssumeRoleWithSAMLError>()
27 .expect("correct error type")
28 })
29 };
30 let context = Self::orchestrate_with_stop_point(runtime_plugins, input, ::aws_smithy_runtime::client::orchestrator::StopPoint::None)
31 .await
32 .map_err(map_err)?;
33 let output = context.finalize().map_err(map_err)?;
34 ::std::result::Result::Ok(
35 output
36 .downcast::<crate::operation::assume_role_with_saml::AssumeRoleWithSamlOutput>()
37 .expect("correct output type"),
38 )
39 }
40
41 pub(crate) async fn orchestrate_with_stop_point(
42 runtime_plugins: &::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
43 input: crate::operation::assume_role_with_saml::AssumeRoleWithSamlInput,
44 stop_point: ::aws_smithy_runtime::client::orchestrator::StopPoint,
45 ) -> ::std::result::Result<
46 ::aws_smithy_runtime_api::client::interceptors::context::InterceptorContext,
47 ::aws_smithy_runtime_api::client::result::SdkError<
48 ::aws_smithy_runtime_api::client::interceptors::context::Error,
49 ::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
50 >,
51 > {
52 let input = ::aws_smithy_runtime_api::client::interceptors::context::Input::erase(input);
53 use ::tracing::Instrument;
54 ::aws_smithy_runtime::client::orchestrator::invoke_with_stop_point("STS", "AssumeRoleWithSAML", input, runtime_plugins, stop_point)
55 .instrument(::tracing::debug_span!(
58 "STS.AssumeRoleWithSAML",
59 "rpc.service" = "STS",
60 "rpc.method" = "AssumeRoleWithSAML",
61 "sdk_invocation_id" = ::fastrand::u32(1_000_000..10_000_000),
62 "rpc.system" = "aws-api",
63 ))
64 .await
65 }
66
67 pub(crate) fn operation_runtime_plugins(
68 client_runtime_plugins: ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins,
69 client_config: &crate::config::Config,
70 config_override: ::std::option::Option<crate::config::Builder>,
71 ) -> ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugins {
72 let mut runtime_plugins = client_runtime_plugins.with_operation_plugin(Self::new());
73
74 if let ::std::option::Option::Some(config_override) = config_override {
75 for plugin in config_override.runtime_plugins.iter().cloned() {
76 runtime_plugins = runtime_plugins.with_operation_plugin(plugin);
77 }
78 runtime_plugins = runtime_plugins.with_operation_plugin(crate::config::ConfigOverrideRuntimePlugin::new(
79 config_override,
80 client_config.config.clone(),
81 &client_config.runtime_components,
82 ));
83 }
84 runtime_plugins
85 }
86}
87impl ::aws_smithy_runtime_api::client::runtime_plugin::RuntimePlugin for AssumeRoleWithSAML {
88 fn config(&self) -> ::std::option::Option<::aws_smithy_types::config_bag::FrozenLayer> {
89 let mut cfg = ::aws_smithy_types::config_bag::Layer::new("AssumeRoleWithSAML");
90
91 cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedRequestSerializer::new(
92 AssumeRoleWithSAMLRequestSerializer,
93 ));
94 cfg.store_put(::aws_smithy_runtime_api::client::ser_de::SharedResponseDeserializer::new(
95 AssumeRoleWithSAMLResponseDeserializer,
96 ));
97
98 cfg.store_put(::aws_smithy_runtime_api::client::auth::AuthSchemeOptionResolverParams::new(
99 crate::config::auth::Params::builder()
100 .operation_name("AssumeRoleWithSAML")
101 .build()
102 .expect("required fields set"),
103 ));
104
105 cfg.store_put(::aws_smithy_runtime_api::client::orchestrator::SensitiveOutput);
106 cfg.store_put(::aws_smithy_runtime_api::client::orchestrator::Metadata::new("AssumeRoleWithSAML", "STS"));
107
108 ::std::option::Option::Some(cfg.freeze())
109 }
110
111 fn runtime_components(
112 &self,
113 _: &::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder,
114 ) -> ::std::borrow::Cow<'_, ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder> {
115 #[allow(unused_mut)]
116 let mut rcb = ::aws_smithy_runtime_api::client::runtime_components::RuntimeComponentsBuilder::new("AssumeRoleWithSAML")
117 .with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(AssumeRoleWithSAMLTelemetryInputCaptureInterceptor))
118.with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(::aws_smithy_runtime::client::stalled_stream_protection::StalledStreamProtectionInterceptor::default()))
119.with_interceptor(::aws_smithy_runtime_api::client::interceptors::SharedInterceptor::permanent(AssumeRoleWithSAMLEndpointParamsInterceptor))
120 .with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::TransientErrorClassifier::<crate::operation::assume_role_with_saml::AssumeRoleWithSAMLError>::new())
121.with_retry_classifier(::aws_smithy_runtime::client::retries::classifiers::ModeledAsRetryableClassifier::<crate::operation::assume_role_with_saml::AssumeRoleWithSAMLError>::new())
122.with_retry_classifier(::aws_runtime::retries::classifiers::AwsErrorCodeClassifier::<crate::operation::assume_role_with_saml::AssumeRoleWithSAMLError>::builder().transient_errors({
123 let mut transient_errors: Vec<&'static str> = ::aws_runtime::retries::classifiers::TRANSIENT_ERRORS.into();
124 transient_errors.push("IDPCommunicationError");
125 ::std::borrow::Cow::Owned(transient_errors)
126 }).build())
127.with_retry_classifier(::aws_runtime::service_clock_skew::ServiceClockSkewClassifier::<crate::operation::assume_role_with_saml::AssumeRoleWithSAMLError>::new());
128
129 ::std::borrow::Cow::Owned(rcb)
130 }
131}
132
133#[derive(Debug)]
134struct AssumeRoleWithSAMLTelemetryInputCaptureInterceptor;
135
136#[::aws_smithy_runtime_api::client::interceptors::dyn_dispatch_hint]
137impl ::aws_smithy_runtime_api::client::interceptors::Intercept for AssumeRoleWithSAMLTelemetryInputCaptureInterceptor {
138 fn name(&self) -> &'static str {
139 "AssumeRoleWithSAMLTelemetryInputCaptureInterceptor"
140 }
141
142 fn read_before_execution(
143 &self,
144 context: &::aws_smithy_runtime_api::client::interceptors::context::BeforeSerializationInterceptorContextRef<
145 '_,
146 ::aws_smithy_runtime_api::client::interceptors::context::Input,
147 ::aws_smithy_runtime_api::client::interceptors::context::Output,
148 ::aws_smithy_runtime_api::client::interceptors::context::Error,
149 >,
150 cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
151 ) -> ::std::result::Result<(), ::aws_smithy_runtime_api::box_error::BoxError> {
152 let ::std::option::Option::Some(requested) = cfg
154 .load::<::aws_smithy_types::telemetry::RequestedTelemetryAttributes>()
155 .filter(|r| !r.is_empty())
156 else {
157 return ::std::result::Result::Ok(());
158 };
159
160 let ::std::option::Option::Some(input) = context.input().downcast_ref::<AssumeRoleWithSamlInput>() else {
161 return ::std::result::Result::Ok(());
163 };
164
165 let mut captured = ::aws_smithy_types::telemetry::CapturedTelemetryAttributes::default();
166 if requested.should_capture("RoleArn") {
167 if let ::std::option::Option::Some(value) = input.role_arn.as_deref() {
168 captured.insert("RoleArn", value);
169 }
170 }
171 if requested.should_capture("PrincipalArn") {
172 if let ::std::option::Option::Some(value) = input.principal_arn.as_deref() {
173 captured.insert("PrincipalArn", value);
174 }
175 }
176 if requested.should_capture("Policy") {
177 if let ::std::option::Option::Some(value) = input.policy.as_deref() {
178 captured.insert("Policy", value);
179 }
180 }
181
182 cfg.interceptor_state().store_put(captured);
183 ::std::result::Result::Ok(())
184 }
185}
186#[derive(Debug)]
187struct AssumeRoleWithSAMLResponseDeserializer;
188impl ::aws_smithy_runtime_api::client::ser_de::DeserializeResponse for AssumeRoleWithSAMLResponseDeserializer {
189 fn deserialize_nonstreaming_with_config(
190 &self,
191 response: &::aws_smithy_runtime_api::client::orchestrator::HttpResponse,
192 _cfg: &::aws_smithy_types::config_bag::ConfigBag,
193 ) -> ::aws_smithy_runtime_api::client::interceptors::context::OutputOrError {
194 let (success, status) = (response.status().is_success(), response.status().as_u16());
195 let headers = response.headers();
196 let body = response.body().bytes().expect("body loaded");
197 #[allow(unused_mut)]
198 let mut force_error = false;
199 ::tracing::debug!(request_id = ?::aws_types::request_id::RequestId::request_id(response));
200 let parse_result = if !success && status != 200 || force_error {
201 crate::protocol_serde::shape_assume_role_with_saml::de_assume_role_with_saml_http_error(status, headers, body, _cfg)
202 } else {
203 crate::protocol_serde::shape_assume_role_with_saml::de_assume_role_with_saml_http_response(status, headers, body, _cfg)
204 };
205 crate::protocol_serde::type_erase_result(parse_result)
206 }
207}
208#[derive(Debug)]
209struct AssumeRoleWithSAMLRequestSerializer;
210impl ::aws_smithy_runtime_api::client::ser_de::SerializeRequest for AssumeRoleWithSAMLRequestSerializer {
211 #[allow(unused_mut, clippy::let_and_return, clippy::needless_borrow, clippy::useless_conversion)]
212 fn serialize_input(
213 &self,
214 input: ::aws_smithy_runtime_api::client::interceptors::context::Input,
215 _cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
216 ) -> ::std::result::Result<::aws_smithy_runtime_api::client::orchestrator::HttpRequest, ::aws_smithy_runtime_api::box_error::BoxError> {
217 let input = input
218 .downcast::<crate::operation::assume_role_with_saml::AssumeRoleWithSamlInput>()
219 .expect("correct type");
220 let _header_serialization_settings = _cfg
221 .load::<crate::serialization_settings::HeaderSerializationSettings>()
222 .cloned()
223 .unwrap_or_default();
224 let mut request_builder = {
225 #[allow(clippy::uninlined_format_args)]
226 fn uri_base(
227 _input: &crate::operation::assume_role_with_saml::AssumeRoleWithSamlInput,
228 output: &mut ::std::string::String,
229 ) -> ::std::result::Result<(), ::aws_smithy_types::error::operation::BuildError> {
230 use ::std::fmt::Write as _;
231 ::std::write!(output, "/").expect("formatting should succeed");
232 ::std::result::Result::Ok(())
233 }
234 #[allow(clippy::unnecessary_wraps)]
235 fn update_http_builder(
236 input: &crate::operation::assume_role_with_saml::AssumeRoleWithSamlInput,
237 builder: ::http_1x::request::Builder,
238 ) -> ::std::result::Result<::http_1x::request::Builder, ::aws_smithy_types::error::operation::BuildError> {
239 let mut uri = ::std::string::String::new();
240 uri_base(input, &mut uri)?;
241 ::std::result::Result::Ok(builder.method("POST").uri(uri))
242 }
243 let mut builder = update_http_builder(&input, ::http_1x::request::Builder::new())?;
244 builder =
245 _header_serialization_settings.set_default_header(builder, ::http_1x::header::CONTENT_TYPE, "application/x-www-form-urlencoded");
246 builder
247 };
248 let body = ::aws_smithy_types::body::SdkBody::from(
249 crate::protocol_serde::shape_assume_role_with_saml_input::ser_assume_role_with_saml_input_input_input(&input)?,
250 );
251 if let Some(content_length) = body.content_length() {
252 let content_length = content_length.to_string();
253 request_builder = _header_serialization_settings.set_default_header(request_builder, ::http_1x::header::CONTENT_LENGTH, &content_length);
254 }
255 ::std::result::Result::Ok(request_builder.body(body).expect("valid request").try_into().unwrap())
256 }
257}
258#[derive(Debug)]
259struct AssumeRoleWithSAMLEndpointParamsInterceptor;
260
261#[::aws_smithy_runtime_api::client::interceptors::dyn_dispatch_hint]
262impl ::aws_smithy_runtime_api::client::interceptors::Intercept for AssumeRoleWithSAMLEndpointParamsInterceptor {
263 fn name(&self) -> &'static str {
264 "AssumeRoleWithSAMLEndpointParamsInterceptor"
265 }
266
267 fn read_before_execution(
268 &self,
269 context: &::aws_smithy_runtime_api::client::interceptors::context::BeforeSerializationInterceptorContextRef<
270 '_,
271 ::aws_smithy_runtime_api::client::interceptors::context::Input,
272 ::aws_smithy_runtime_api::client::interceptors::context::Output,
273 ::aws_smithy_runtime_api::client::interceptors::context::Error,
274 >,
275 cfg: &mut ::aws_smithy_types::config_bag::ConfigBag,
276 ) -> ::std::result::Result<(), ::aws_smithy_runtime_api::box_error::BoxError> {
277 let _input = context
278 .input()
279 .downcast_ref::<AssumeRoleWithSamlInput>()
280 .ok_or("failed to downcast to AssumeRoleWithSamlInput")?;
281
282 let params = crate::config::endpoint::Params::builder()
283 .set_region(cfg.load::<::aws_types::region::Region>().map(|r| r.as_ref().to_owned()))
284 .set_use_dual_stack(cfg.load::<::aws_types::endpoint_config::UseDualStack>().map(|ty| ty.0))
285 .set_use_fips(cfg.load::<::aws_types::endpoint_config::UseFips>().map(|ty| ty.0))
286 .set_endpoint(cfg.load::<::aws_types::endpoint_config::EndpointUrl>().map(|ty| ty.0.clone()))
287 .build()
288 .map_err(|err| {
289 ::aws_smithy_runtime_api::client::interceptors::error::ContextAttachedError::new("endpoint params could not be built", err)
290 })?;
291 cfg.interceptor_state()
292 .store_put(::aws_smithy_runtime_api::client::endpoint::EndpointResolverParams::new(params));
293 ::std::result::Result::Ok(())
294 }
295}
296
297#[non_exhaustive]
302#[derive(::std::fmt::Debug)]
303pub enum AssumeRoleWithSAMLError {
304 ExpiredTokenException(crate::types::error::ExpiredTokenException),
306 IdpRejectedClaimException(crate::types::error::IdpRejectedClaimException),
309 InvalidIdentityTokenException(crate::types::error::InvalidIdentityTokenException),
311 MalformedPolicyDocumentException(crate::types::error::MalformedPolicyDocumentException),
313 PackedPolicyTooLargeException(crate::types::error::PackedPolicyTooLargeException),
316 RegionDisabledException(crate::types::error::RegionDisabledException),
318 #[deprecated(note = "Matching `Unhandled` directly is not forwards compatible. Instead, match using a \
320 variable wildcard pattern and check `.code()`:
321 \
322 `err if err.code() == Some(\"SpecificExceptionCode\") => { /* handle the error */ }`
323 \
324 See [`ProvideErrorMetadata`](#impl-ProvideErrorMetadata-for-AssumeRoleWithSAMLError) for what information is available for the error.")]
325 Unhandled(crate::error::sealed_unhandled::Unhandled),
326}
327impl AssumeRoleWithSAMLError {
328 pub fn unhandled(
330 err: impl ::std::convert::Into<::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>>,
331 ) -> Self {
332 Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
333 source: err.into(),
334 meta: ::std::default::Default::default(),
335 })
336 }
337
338 pub fn generic(err: ::aws_smithy_types::error::ErrorMetadata) -> Self {
340 Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
341 source: err.clone().into(),
342 meta: err,
343 })
344 }
345 pub fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
350 match self {
351 Self::ExpiredTokenException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
352 Self::IdpRejectedClaimException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
353 Self::InvalidIdentityTokenException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
354 Self::MalformedPolicyDocumentException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
355 Self::PackedPolicyTooLargeException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
356 Self::RegionDisabledException(e) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(e),
357 Self::Unhandled(e) => &e.meta,
358 }
359 }
360 pub fn is_expired_token_exception(&self) -> bool {
362 matches!(self, Self::ExpiredTokenException(_))
363 }
364 pub fn is_idp_rejected_claim_exception(&self) -> bool {
366 matches!(self, Self::IdpRejectedClaimException(_))
367 }
368 pub fn is_invalid_identity_token_exception(&self) -> bool {
370 matches!(self, Self::InvalidIdentityTokenException(_))
371 }
372 pub fn is_malformed_policy_document_exception(&self) -> bool {
374 matches!(self, Self::MalformedPolicyDocumentException(_))
375 }
376 pub fn is_packed_policy_too_large_exception(&self) -> bool {
378 matches!(self, Self::PackedPolicyTooLargeException(_))
379 }
380 pub fn is_region_disabled_exception(&self) -> bool {
382 matches!(self, Self::RegionDisabledException(_))
383 }
384}
385impl ::std::error::Error for AssumeRoleWithSAMLError {
386 fn source(&self) -> ::std::option::Option<&(dyn ::std::error::Error + 'static)> {
387 match self {
388 Self::ExpiredTokenException(_inner) => ::std::option::Option::Some(_inner),
389 Self::IdpRejectedClaimException(_inner) => ::std::option::Option::Some(_inner),
390 Self::InvalidIdentityTokenException(_inner) => ::std::option::Option::Some(_inner),
391 Self::MalformedPolicyDocumentException(_inner) => ::std::option::Option::Some(_inner),
392 Self::PackedPolicyTooLargeException(_inner) => ::std::option::Option::Some(_inner),
393 Self::RegionDisabledException(_inner) => ::std::option::Option::Some(_inner),
394 Self::Unhandled(_inner) => ::std::option::Option::Some(&*_inner.source),
395 }
396 }
397}
398impl ::std::fmt::Display for AssumeRoleWithSAMLError {
399 fn fmt(&self, f: &mut ::std::fmt::Formatter<'_>) -> ::std::fmt::Result {
400 match self {
401 Self::ExpiredTokenException(_inner) => _inner.fmt(f),
402 Self::IdpRejectedClaimException(_inner) => _inner.fmt(f),
403 Self::InvalidIdentityTokenException(_inner) => _inner.fmt(f),
404 Self::MalformedPolicyDocumentException(_inner) => _inner.fmt(f),
405 Self::PackedPolicyTooLargeException(_inner) => _inner.fmt(f),
406 Self::RegionDisabledException(_inner) => _inner.fmt(f),
407 Self::Unhandled(_inner) => {
408 if let ::std::option::Option::Some(code) = ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self) {
409 write!(f, "unhandled error ({code})")
410 } else {
411 f.write_str("unhandled error")
412 }
413 }
414 }
415 }
416}
417impl ::aws_smithy_types::retry::ProvideErrorKind for AssumeRoleWithSAMLError {
418 fn code(&self) -> ::std::option::Option<&str> {
419 ::aws_smithy_types::error::metadata::ProvideErrorMetadata::code(self)
420 }
421 fn retryable_error_kind(&self) -> ::std::option::Option<::aws_smithy_types::retry::ErrorKind> {
422 ::std::option::Option::None
423 }
424}
425impl ::aws_smithy_types::error::metadata::ProvideErrorMetadata for AssumeRoleWithSAMLError {
426 fn meta(&self) -> &::aws_smithy_types::error::ErrorMetadata {
427 match self {
428 Self::ExpiredTokenException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
429 Self::IdpRejectedClaimException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
430 Self::InvalidIdentityTokenException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
431 Self::MalformedPolicyDocumentException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
432 Self::PackedPolicyTooLargeException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
433 Self::RegionDisabledException(_inner) => ::aws_smithy_types::error::metadata::ProvideErrorMetadata::meta(_inner),
434 Self::Unhandled(_inner) => &_inner.meta,
435 }
436 }
437}
438impl ::aws_smithy_runtime_api::client::result::CreateUnhandledError for AssumeRoleWithSAMLError {
439 fn create_unhandled_error(
440 source: ::std::boxed::Box<dyn ::std::error::Error + ::std::marker::Send + ::std::marker::Sync + 'static>,
441 meta: ::std::option::Option<::aws_smithy_types::error::ErrorMetadata>,
442 ) -> Self {
443 Self::Unhandled(crate::error::sealed_unhandled::Unhandled {
444 source,
445 meta: meta.unwrap_or_default(),
446 })
447 }
448}
449impl ::aws_types::request_id::RequestId for crate::operation::assume_role_with_saml::AssumeRoleWithSAMLError {
450 fn request_id(&self) -> Option<&str> {
451 self.meta().request_id()
452 }
453}
454
455pub use crate::operation::assume_role_with_saml::_assume_role_with_saml_input::AssumeRoleWithSamlInput;
456
457pub use crate::operation::assume_role_with_saml::_assume_role_with_saml_output::AssumeRoleWithSamlOutput;
458
459mod _assume_role_with_saml_input;
460
461mod _assume_role_with_saml_output;
462
463pub mod builders;